dpd.mztrxplnqv.cloud
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of dpd.mztrxplnqv.cloud
The domain dpd.mztrxplnqv.cloud appears to be a very recently created subdomain hosted on Cloudflare infrastructure. Based on the hostname, it may be attempting to reference or resemble DPD, a well-known parcel delivery brand, but the actual registered domain is mztrxplnqv.cloud rather than an official DPD web property. The available classification data associates this site with phishing and fraud-related activity rather than a legitimate logistics or parcel-tracking service.
This does not appear to be a normal business website with an established web presence. It is not ranked among popular sites, was registered only days before the scan, and uses a generic cloud-hosted domain structure that may be consistent with disposable or short-lived campaign infrastructure. Based on the available data, the site may have been set up to impersonate a delivery-related service or to support credential-harvesting activity.
Safety Assessment for dpd.mztrxplnqv.cloud
Multiple independent signals indicate elevated risk at the time of this scan. The domain was flagged by 9 out of 91 security engines, and several web-classification providers categorized it as phishing, fraud, or a newly registered suspicious website. In addition, one major safe-browsing database listed the domain for social engineering, which is a strong indicator that the site may be involved in deceptive activity aimed at collecting user information or prompting unsafe actions.
The domain name also closely resembles a delivery-brand reference through the use of "dpd" on a newly registered cloud subdomain, which may indicate a look-alike setup rather than an official service page. Although the malware scan did not detect malicious files and no external links or iframes were observed, those findings do not offset the stronger phishing-related signals, especially given the domain's age of only 2 days and lack of established reputation. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was hosted behind Cloudflare and resolved to IP address 188.114.97.2, with nameservers cass.ns.cloudflare.com and kirk.ns.cloudflare.com. It presented a valid Let's Encrypt SSL certificate expiring on 2026-08-25, which indicates encrypted transport was available at the time of the scan. DNSSEC was not enabled, as the domain was unsigned.
From a security perspective, the main concerns are reputational rather than transport-layer configuration. The infrastructure appears to use common CDN and reverse-proxy services that are widely used by both legitimate and abusive sites, so hosting alone is not conclusive. However, the combination of very recent registration, unsigned DNSSEC, phishing-related classifications, and blacklist presence may be consistent with short-lived deceptive infrastructure.
Share your experience with this website. Was it safe? Did you encounter any issues?